Stars
CLI to support with downloading and compiling terraform providers for Mac with M1 chip
Check any website (or set of websites) for insecure security headers.
🔥 Feature-rich interactive Jira command line.
Python helper library for working with the Veracode APIs. Handles retries, pagination, and other features of the modern Veracode REST APIs.
Copies mitigations from one Veracode profile to another if it's the same flaw based on the following flaw attributes: issueid, cweid, type, sourcefile, and line. The script will copy all proposed a…
Command line utility to extract a single layer tarball from a saved docker image tarball
OpenBao exists to provide a software solution to manage, store, and distribute sensitive data including secrets, certificates, and keys.
Vulnerable Terraform Projects - Fork of https://github.com/bridgecrewio/terragoat
Draw.io libraries for threat modeling diagrams
The Azure Devops extension for adding Datadog monitors as gates. Includes a listing as well as the source code.
Publicly-listed AWS account IDs for easy lookup. Great for cleaning up false positives from unknown Account IDs in Cloudtrail
A more featureful runner for sbt, the simple/scala/standard build tool
Retrieves findings with APPROVED mitigations from an application's policy scan (or sandbox) and creates a baseline file for Pipeline Scan. Mitigations in a "proposed" state will not be retrieved.
⏩ Simple HTTP Error Page Generator
The Python Risk Identification Tool for generative AI (PyRIT) is an open source framework built to empower security professionals and engineers to proactively identify risks in generative AI systems.
OWASP Benchmark is a test suite designed to verify the speed and accuracy of software vulnerability detection tools. A fully runnable web app written in Java, it supports analysis by Static (SAST),…
How to become a certified AWS Solutions Architect
Deploy compose application on ECS
Insomnium is a fast local API testing tool that is privacy-focused and 100% local. For testing GraphQL, REST, WebSockets and gRPC. This is a fork of Kong/insomnia
OpenSSL-based Authenticode signing for PE, CAB, CAT, MSI, APPX, and script file
Open-Source API Development Ecosystem • https://hoppscotch.io • Offline, On-Prem & Cloud • Web, Desktop & CLI • Open-Source Alternative to Postman, Insomnia